Denial of Service Vulnerability in Cisco Identity Services Engine
CVE-2025-20343
8.6HIGH
What is CVE-2025-20343?
A logic error in the RADIUS processing settings of Cisco Identity Services Engine (ISE) permits an unauthenticated remote attacker to exploit this vulnerability. By sending a series of specially crafted RADIUS access request messages targeting a MAC address already listed as a rejected endpoint, an attacker could induce unexpected restarts of the Cisco ISE system. This behavior can result in significant service disruptions, manifesting as a Denial of Service (DoS) condition as legitimate users may be unable to access network resources.
Affected Version(s)
Cisco Identity Services Engine Software 3.4.0
Cisco Identity Services Engine Software 3.4 Patch 1
Cisco Identity Services Engine Software 3.4 Patch 2